NTRU Prime

From PQC WIKI

Information

Authors

  • Daniel J. Bernstein, University of Illinois at Chicago
  • Chitchanok Chuengsatiansup, École Normale Supérieure de Lyon
  • Tanja Lange, Technische Universiteit Eindhoven
  • Christine van Vredendaal, Technische Universiteit Eindhoven


Official Links

Related Articles

Power Analysis on NTRU Prime
Wei-Lun Huang and Jiun-Peng Chen and Bo-Yin Yang.
IACR-CHES-2020, 2019.

NTRU Prime: reducing attack surface at low cost
Daniel J. Bernstein, Chitchanok Chuengsatiansup, Tanja Lange, Christine van Vredendaal., 16 August 2017.

Divergence bounds for random fixed-weight vectors obtained by sorting
Daniel J. Bernstein., 12 December 2017.


Summary Tables

NTRU Prime - ROUND 1

Description lattice

NTRU prime

Assumption NTRU prime
Functionality KEM
Public Key

(bytes)

  • level 5 (a): 1218
  • level 5 (b): 1047
Secret Key

(bytes)

  • level 5 (a): 1600
  • level 5 (b): 1238
CIPH/SIG

(bytes)

  • level 5 (a): 1047
  • level 5 (b): 1175
Security

Type

IND-CCA (Dent)

NTRU Prime - ROUND 2

Streamlined NTRU Prime NTRU LPRime
Description lattice

NTRU prime

Assumption NTRU prime
Functionality KEM
Public Key

(bytes)

  • level 2: 994
  • level 3: 1158
  • level 4: 1322
  • level 2: 897
  • level 3: 1039
  • level 4: 1184
Secret Key

(bytes)

  • level 2: 1518
  • level 3: 1763
  • level 4: 1999
  • level 2: 1125
  • level 3: 1294
  • level 4: 1463
CIPH/SIG

(bytes)

  • level 2: 897
  • level 3: 1039
  • level 4: 1184
  • level 2: 1025
  • level 3: 1167
  • level 4: 1312
Security

Type

IND-CCA (Dent)